OESA-2023-1263
Dashboard / Vulnerabilities / OESA-2023-1263
Summary: screen security update
Details: Screen is a full-screen window manager that multiplexes a physical terminal between several processes,typically interactive shells. Security Fix(es): socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.(CVE-2023-24626)
References: https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1263, https://nvd.nist.gov/vuln/detail/CVE-2023-24626
Affected packages
Package
Name: screen
Purl: pkg:rpm/openEuler/screen&distro=openEuler-20.03-LTS-SP1
Affected ranges
Type: ECOSYSTEM
Events:
